In libavif before 1.3.0, avifImageRGBToYUV in reformat.c has integer overflows in multiplications involving rgbRowBytes, yRowBytes, uRowBytes, and vRowBytes.
{
"sources": [
{
"imported": "2026-04-17T08:45:49.620Z",
"id": "CVE-2025-48175",
"published": "2025-05-16T05:15:37.470Z",
"modified": "2025-11-03T20:19:06.153Z",
"database_specific": {
"status": "Modified"
},
"url": "https://services.nvd.nist.gov/rest/json/cves/2.0?cveId=CVE-2025-48175",
"html_url": "https://nvd.nist.gov/vuln/detail/CVE-2025-48175"
},
{
"html_url": "https://github.com/advisories/GHSA-44mp-2g68-7wvv",
"id": "GHSA-44mp-2g68-7wvv",
"published": "2025-05-16T06:30:24Z",
"modified": "2025-11-03T21:34:58Z",
"url": "https://api.github.com/advisories/GHSA-44mp-2g68-7wvv",
"imported": "2026-04-17T08:45:49.893Z"
},
{
"imported": "2026-04-17T08:45:49.728Z",
"id": "EUVD-2025-15403",
"published": "2025-05-16T00:00:00Z",
"modified": "2025-11-03T20:04:43Z",
"url": "https://euvdservices.enisa.europa.eu/api/enisaid?id=EUVD-2025-15403",
"html_url": "https://euvd.enisa.europa.eu/vulnerability/EUVD-2025-15403"
}
],
"license": "CC-BY-4.0"
}